1 Data Protection Notice
Bosch Sicherheitssysteme GmbH (hereinafter "Bosch“ or "We“ or "Us") is delighted about your visit to our internet pages and mobile applications (together also referred to as "Online Offers") and about your interest in our company and our products.
The protection of your privacy throughout the course of processing personal data as well as the security of all business data is an important concern to us. We process personal data that was gathered during your visit of our Online Offers confidentially and only in accordance with statutory regulations.
Data protection and information security are included in our corporate policy.
Bosch is the controller responsible for the processing of your data; exceptions are outlined in this data protection notice.
Our contact details are as follows:
Bosch Sicherheitssysteme GmbH
Chairman of the Supervisory Board
Dr. Christian Fischer
Tanja Rückert, Andreas Bartz, Thomas Quante
+49 89 6290-0
Court of Record: Amtsgericht Stuttgart, HRB 23118
4.1 Processed categories of data
The following categories of data are processed:
· Communication data (e.g. name, telephone, e-mail, address, IP address)
· Client history
· Transaction data
Personal data consists of all information related to an identified or identifiable natural person, this includes, e.g. names, addresses, phone numbers, email addresses, contractual master data, contract accounting and payment data, which is an expression of a person's identity.
We collect, process and use personal data (including IP addresses) only when there is either a statutory legal basis to do so or you have given your consent to the processing or use of personal data concerning this matter, e.g. by means of registration.
4.3 Processing purposes and legal bases
We and service providers commissioned by us process your personal data for the following processing purposes:
4.3.1 Free offer without registration
Provision of these Online Offers (Legal basis: Justified
interest on our part in direct marketing as long as this occurs in accordance
with data protection and competition law)
To determine disruptions/disturbances and for security
reasons (Legal bases: Fulfillment of our legal obligations within the scope of
data security and justified interest in resolving disruptions/disturbances and
in the security of our offers).
– Safeguarding and vindication of our rights (Legal basis: Justified interest on our part for the safeguarding and vindication of our rights).
If you wish to use/access benefits that require the formation of a contract, we request that you register. Within the scope of the registration we collect personal data necessary for the formation and the fulfillment of the contract (e.g., first name, last name, date of birth, email address, if applicable, details on the preferred payment method or on the account holder) as well as, if applicable, additional data on a voluntary basis. Mandatory statements are marked with a *.
4.5 Log files
Every time you use the internet, your browser transmits certain information which we store in so-called log files.
We save log files for a short time solely to determine disturbances and for security reasons (e.g., to clarify attack attempts) and then we delete them afterwards. Log files which need to be maintained for evidence purposes are excluded from deletion until the respective incident has been completely resolved and may, on a case-by-case basis, be passed on to investigating authorities.
Log files are also used for analysis purposes (without or without complete IP address). See module web analysis therefore.
In log files, the following information in particular is being saved:
– IP address (internet protocol address) of the terminal device which is being used to access the Online Offers;
– Internet address of the website from which the Online Offer has been accessed (so-called URL of origin or referrer URL);
– Name of the service provider which is used to access the Online Offers;
– Name of the files or information accessed;
– Date and time as well as duration of retrieval;
– Amount of data transferred;
– Operating system and information on the internet browser used including add-ons installed (e.g., Flash Player);
– http status code (e.g., “Request successful” or “File requested not found”).
This Online Offer is not for children under 16 years of age.
4.7 Data transfer
4.7.1 Data transfer to other controllers
Your personal data is principally forwarded to other controllers only when required for the fulfillment of a contract, in the case where we or the third party have a legitimate interest in the transfer, or when your consent has been given. Particulars on the legal bases can be found in the Section - Purposes of Processing and Legal Bases. Third parties may also be other companies of the Bosch group. When data is transferred to third parties based on a justified interest, this is explained in this data protection notice.
Additionally, data may be transferred to other controllers when we are obliged to do so due to statutory regulations or enforceable administrative or judicial orders.
4.7.2 Service providers (general)
We have commissioned external service providers with tasks such as sales and marketing services, contract management, payment handling, programming, data hosting and hotline services. We have chosen these service providers carefully and review them regularly, especially regarding their diligent handling of and protection of the data that they have saved. All service providers are obliged to maintain confidentiality and to abide by the statutory provisions. Service providers may also be other Bosch group companies.
4.8 Duration of storage; retention periods
Principally, we store your data for as long as it is necessary to render our Online Offers and the services connected to them or for as long as we have a justified interest in storing the data (e.g., we might still have a justified interest in postal mail marketing upon fulfillment of a contract). In all other cases we delete your personal data with the exception of data we must store to fulfill legal obligations (e.g., we are obliged due to retention periods under the tax and commercial codes to have documents such as contracts and invoices available for a certain period of time).
5 Usage of our mobile applications
In addition to our Online Offers, we offer mobile applications ("Apps"), which you can download to your mobile device. Beyond the data collected on websites, we collect additional personal data through our apps that specifically result from the usage of a mobile device. This occurs only when you expressly grant your consent.
5.1 Data processing by App Store operators
No data collecting by us and outside our responsibility is the transfer of data such as username, email address and individual device identifier to an app store (e.g., Google Play by Google, App Store by Apple, Galaxy Apps Store by Samsung) when downloading the respective application. We are unable to influence this data collection and further processing by the App Store as controller.
5.2 Data processing by Microsoft
For continuous improvement, we need statistical information about the usage of our applications. For this purpose, we use the "Windows Desktop Application Program" analysis tool from Microsoft. We use the "Windows Desktop Application Program" for failure analyses and improvements of our applications. We are unable to influence data collection and further processing by Microsoft.
Our Online Offers may contain links to third party internet pages – by providers who are not related to us. Upon clicking the link, we have no influence on collecting, processing and using personal data possibly transmitted by clicking the link to the third party (such as the IP address or the URL of the site on which the link is located) as the behavior of third parties is naturally outside our supervision. We do not assume responsibility for the processing of such personal data by third parties.
Our employees and the companies providing services on our behalf, are obliged to confidentiality and to compliance with the applicable data protection laws.
We take all necessary technical and organizational measures to ensure an appropriate level of security and to protect your data that are administrated by us especially from the risks of unintended or unlawful destruction, manipulation, loss, change or unauthorized disclosure or unauthorized access. Our security measures are, pursuant to technological progress, constantly being improved.
8 User rights
To enforce your rights, please use the details provided in the Contact section. In doing so, please ensure that an unambiguous identification of your person is possible.
Right to information and access:
You have the right to obtain confirmation from us about whether or not your personal data is being processed, and, if this is the case, access to your personal data.
Right to correction and deletion:
You have the right to obtain the rectification of inaccurate personal data concerning yourself without undue delay from us. Taking into account the purposes of the processing, you have the right to have incomplete personal data completed, including by means of providing a supplementary statement.
This does not apply to data which is necessary for billing or accounting purposes or which is subject to a statutory retention period. If access to such data is not required, however, its processing is restricted (see the following).
Restriction of processing:
You have the right to demand for – as far as statutory requirements are fulfilled – restriction of the processing of your data.
Objection to data processing:
You have the right to object to data processing by us at any time. We will no longer process the personal data unless we demonstrate compliance with legal requirements to provide provable reasons for the further processing which are beyond your interests, rights and freedoms or for the establishment, exercise or defense of legal claims.
Objection to direct marketing:
Additionally, you may object to the processing of your personal data for direct marketing purposes at any time. Please take into account that, due to organizational reasons, there might be an overlap between your objection and the usage of your data within the scope of a campaign which is already running.
Objection to data processing based on the legal basis of “justified interest”:
In addition, you have the right to object to the processing of your personal data any time, insofar as this is based on the legal basis of justified interest. We will then terminate the processing of your data, unless we demonstrate compelling legitimate grounds according to legal requirements for the processing, which override your rights.
Withdrawal of consent:
In case you consented to the processing of your data, you have the right to object this consent with immediate effect. The legality of data processing prior to your revocation remains unchanged.
8.1 Right of complaint with supervisory authority:
You have the right to lodge a complaint with a supervisory authority. You can appeal to the supervisory authority which is responsible for your place of residence or your state or to the supervisory authority responsible for us. This is:
State Commissioner for Data Protection and Freedom of Information
We reserve the right to change our security and data protection measures if this is required due to technical development. In such cases, we will amend our data protection notice accordingly. Please therefore observe the current version of our data protection notice, as this is subject to change.
If you want to contact us, please find us at the address stated in the "Controller" section.
To assert your rights and for suggestions and complaints regarding the processing of your personal data as well as for the withdrawal of your consent, we recommend that you contact our group commissioner for data protection:
Mr. Matthias Goebel
Group Commissioner for Data Protection
Information Security and Privacy Bosch Group (C/ISP)
Robert Bosch GmbH
11 Effective date: 07/17/2018